1

Grc Risk Analyst Jobs in Pennsylvania (NOW HIRING)

Senior GRC Analyst

Pittsburgh, PA ยท On-site

$114K - $163K/yr

Senior GRC Analyst Department: Compliance & Fraud Employment Type: Full Time Location: Pittsburgh ... Execute third-party risk assessments across our vendor portfolio, including security questionnaire ...

As a GRC Engineer here at Chubb, you will apply engineering, automation, and data analytics ... In this role, you will connect data, controls, and risk signals to drive deeper risk analysis ...

IRC Analyst

Reedsville, PA ยท Hybrid

$70K - $110K/yr

Prepare risk assessments and generate risk and control matrices (RACM); update GRC systems with ... Analyze transactions, documentation, and reporting to assess adequacy and process effectiveness.

IRC Analyst

Mount Joy, PA ยท Hybrid

$70K - $110K/yr

Prepare risk assessments and generate risk and control matrices (RACM); update GRC systems with ... Analyze transactions, documentation, and reporting to assess adequacy and process effectiveness.

IRC Analyst

Mechanicsburg, PA ยท Hybrid

$70K - $110K/yr

Prepare risk assessments and generate risk and control matrices (RACM); update GRC systems with ... Analyze transactions, documentation, and reporting to assess adequacy and process effectiveness.

As a GRC Engineer here at Chubb, you will apply engineering, automation, and data analytics ... In this role, you will connect data, controls, and risk signals to drive deeper risk analysis ...

next page

Showing results 1-20

Grc Risk Analyst information

What is a GRC Risk Analyst?

GRC Risk Analysts are professionals who specialize in Governance, Risk, and Compliance (GRC) within an organization. They assess and manage risks related to business operations, ensure compliance with relevant laws and regulations, and help implement policies and controls to mitigate potential threats. These analysts work closely with management to identify vulnerabilities, develop risk management strategies, and monitor the effectiveness of compliance programs. Their goal is to protect the organization from financial, legal, and reputational harm while supporting business objectives.

What are the key skills and qualifications needed to thrive as a GRC Risk Analyst?

To thrive as a GRC (Governance, Risk, and Compliance) Risk Analyst, you need a solid understanding of risk management principles, regulatory requirements, and compliance frameworks, often supported by a degree in information security, business, or a related field. Familiarity with GRC platforms (such as RSA Archer or MetricStream), risk assessment methodologies, and certifications like CRISC or CISA is highly valuable. Strong analytical thinking, attention to detail, and effective communication skills help you identify risks and convey findings to stakeholders. These skills are critical for ensuring organizational compliance, minimizing risk exposure, and supporting informed decision-making.

What are some common challenges a GRC Risk Analyst might face when implementing new risk management frameworks within an organization?

A GRC Risk Analyst often encounters challenges such as resistance to change from stakeholders, integrating new frameworks with existing processes, and ensuring consistent understanding across departments. Aligning risk management practices with organizational goals while adhering to regulatory requirements can also be complex. Success in this role requires strong communication skills, adaptability, and the ability to educate and collaborate with team members from diverse backgrounds.

What is the difference between Grc Risk Analyst vs Compliance Analyst?

AspectGrc Risk AnalystCompliance Analyst
CertificationsISO 31000, FRM, CRISCISO 19600, CCEP, CISA
Work EnvironmentRisk management teams, corporate officesRegulatory departments, corporate offices
Industry UsageFinance, banking, insurance, corporate riskFinancial services, healthcare, manufacturing
Job FocusIdentifying, assessing, and mitigating risks across enterpriseEnsuring compliance with laws and regulations

While both roles involve regulatory and risk considerations, a Grc Risk Analyst focuses on enterprise-wide risk management strategies, whereas a Compliance Analyst concentrates on adherence to specific laws and regulations. Both roles require similar certifications and often work in overlapping industries, but their core responsibilities differ in scope and focus.

What job categories do people searching Grc Risk Analyst jobs in Pennsylvania look for?

The top searched job categories for Grc Risk Analyst jobs in Pennsylvania are:

What cities in Pennsylvania are hiring for Grc Risk Analyst jobs?

Cities in Pennsylvania with the most Grc Risk Analyst job openings:

Infographic showing various Grc Risk Analyst job openings in Pennsylvania as of August 2026, with employment types broken down into 1% As Needed, 82% Full Time, 14% Part Time, 2% Contract, and 1% Nights. Highlights an 87% Physical, 5% Hybrid, and 8% Remote job distribution.

Risk Analyst - Digital Workplace - 26-11322

Compu-Vision - IT

Philadelphia, PA โ€ข Remote

Contractor

Posted 6 days ago


Job description

Risk Analyst – Digital Workplace

Location: Remote
Duration: 12 Months


Position Overview

We are seeking an experienced Risk Analyst – Digital Workplace to support Governance, Risk, and Controls (GRC) initiatives within a regulated or financial services environment.

The ideal candidate will have strong experience in operational risk management, process documentation, risk assessments, control development, remediation tracking, and stakeholder management. This role will work closely with business and technology teams to identify risks, strengthen controls, improve processes, and ensure successful execution of governance initiatives.

Key Responsibilities
  • Partner with business and technology teams to document end-to-end processes, procedures, risks, and controls.
  • Support and coordinate GRC-related projects, deliverables, remediation activities, and action plans.
  • Facilitate workshops, interviews, and working sessions with stakeholders.
  • Identify process gaps, control requirements, risks, and opportunities for improvement.
  • Develop and maintain:
    • Process documentation
    • Process flows
    • Control narratives
    • Risk assessments
    • Control inventories
    • Supporting governance artifacts
  • Assist in designing new preventive and detective controls.
  • Enhance existing controls to address identified risks.
  • Track action plans, issues, dependencies, milestones, and remediation activities.
  • Prepare management and executive-level status reports and presentations.
  • Support audits, regulatory examinations, and internal reviews by gathering and organizing required documentation.
  • Translate business requirements into clear and actionable processes and control documentation.
  • Monitor progress of risk and control initiatives and proactively identify potential delays or issues.
Required Qualifications
  • Experience supporting Governance, Risk, and Controls (GRC) programs.
  • Experience in financial services or other regulated environments preferred.
  • Strong understanding of operational risk management, including:
    • Risk identification
    • Risk assessment
    • Risk mitigation
    • Risk monitoring
  • Experience documenting processes, procedures, process flows, risk assessments, and controls.
  • Experience developing, documenting, and maintaining preventive and detective controls.
  • Ability to translate business requirements into actionable processes and control documentation.
  • Strong project management and coordination skills.
  • Experience tracking deliverables, action items, dependencies, and milestones.
  • Strong stakeholder management and facilitation skills.
  • Excellent analytical, organizational, and documentation abilities.
  • Strong attention to detail and accuracy.
Preferred Knowledge

Familiarity with recognized control frameworks and industry standards such as:

  • COSO
  • SOX
  • Operational Risk Management
  • NIST
  • COBIT
Tools & Technical Skills
  • Microsoft Excel
  • Microsoft PowerPoint
  • Microsoft Word
  • Visio
  • SharePoint
  • Jira
  • Confluence
  • Experience with collaboration and project-management tools.